CVE List

CVE-2021-33193

Critical 7.5

A crafted method sent through HTTP/2 will bypass validation and be forwarded by mod_proxy, which can lead to request splitting or cache poisoning. This issue affects Apache HTTP Server 2.4.17 to 2.4.48.

Published August 16, 2021.

Affected software

Get alerts for Apache HTTP Server

Reference links